
PyRIT
Open-source framework for red-teaming generative AI systems: automate attack prompts, score model responses, and audit behavior to identify security…

Open-source framework for red-teaming generative AI systems: automate attack prompts, score model responses, and audit behavior to identify security…

Real-time Windows system monitor with advanced process, network, and disk analysis, stack trace debugging, malware detection, and service management.…

Static analysis tool for CI/CD systems that detects and fixes security issues in GitHub Actions, Dependabot, and pre-commit configurations, including…

CLI tool and library for generating a Software Bill of Materials from container images and filesystems

Program for determining types of files for Windows, Linux and MacOS.

Shodan Eye This tool collects all the information about all devices directly connected to the internet using the specified keywords that you enter.…

CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security


🔍 Scan for CVE-2025-55182 risks in React Server Components with this non-intrusive tool that helps detect critical vulnerabilities in your…

High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…

Fast XSS scanner with parameter analysis, WAF fingerprinting, and DOM/AST verification. Supports reflected, stored, and DOM-based XSS detection via…

Git diff for SBOMs—compare CycloneDX, SPDX, and Syft documents, detect tampering, and gate CI.

RSA attack tool (mainly for ctf) - retrieve private key from weak public key and/or uncipher data

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

PoC script for CVE-2026-26026 GLPI versions 11.0.0 through 11.0.5

OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.

Build and manage Trivy vulnerability databases by aggregating security advisories from NVD, Red Hat, Debian, and more. A CLI tool and library for…

Static analysis tool for infrastructure as code that detects cloud misconfigurations, vulnerabilities, and secrets across Terraform, Kubernetes,…